Backslash introduced a new, free resource for vibe coders, developers and security teams - the Backslash MCP Server Security Hub.
Sonar has expanded its SonarCloud offering with the availability of two new plans, SonarCloud Enterprise and SonarCloud Team.
SonarCloud is the company’s fully managed SaaS solution for improving the quality and security of human-developed and AI-assisted code at scale.
With the new Enterprise and Team plans for SonarCloud, Sonar empowers development teams of all sizes to deliver Clean Code with confidence.
Sonar’s Clean Code solutions help developers catch bugs, quality concerns, and security flaws early in the development process, as code is being created. This allows them to find and resolve issues before they can make it through to production, improving developer productivity, software quality, and business performance.
The new SonarCloud plans ensure developer teams can leverage SonarCloud as their needs grow, to continuously reduce exposure to risk at all levels and sustain the performance of their software, growing business through systematic development and delivery.
“The adoption of AI coding assistants and the push for faster software development have increased code volume and raised reliability concerns. However, most code scanning tools are just adding to the growing list of issues that are potential threats to business, most of which are false positives. Developers need to be empowered to find issues early and be motivated to fix them with the tools they love and have confidence in. Development teams who use SonarCloud are able to pinpoint and remediate as early in the development process as possible,” said Fabrice Bellingard, VP of Product at Sonar.
SonarCloud Enterprise offers organization-wide portfolio management, new authentication and security features, executive reporting functionality, simplified administration, enterprise service-level agreements, and dedicated commercial support for all customers. Additionally, SonarCloud Enterprise is available on AWS Marketplace, ensuring simplified procurement and onboarding.
- Centralizing Controls: Specific features include enterprise hierarchy, portfolio creation, organization-wide configurable settings, project PDF reporting for technology leads and managers, and security standard reports for IT security teams.
- Authentication and Security: Features that support ongoing security assurance include Single Sign-On (SSO), synchronized access management, and more scalable token management.
- Simplified Administration: At onboarding, default settings can be prepared and applied to all projects with organization-wide project configuration. This relieves the tedious and slow task that large enterprises face of configuring a high number of projects, project by project. Automated project creation at scale also supports ease in standing up SonarCloud. It enables the auto-creation of projects in SonarCloud that were initially built in an enterprise DevOps platform. Additionally, enterprise billing means that billing can be done as a single entity while being applied to multiple organizations.
- Flexible plans to meet the needs of all organizations: SonarCloud’s existing Private Repo plan has been replaced by SonarCloud Team and will continue to provide the reliable, SaaS solution that users trust and rely on today. At an affordable price, SonarCloud Team provides all the benefits of the SonarQube Community Edition plus additional features like branch analysis, pull request decoration, and injection flow detection. With the Team plan, developers can scan both public and private projects for actionable insights that enable consistent and efficient Clean Code delivery all in a simple, fast time-to-value SaaS model hosted by Sonar. Teams also have control to define the quality standard they want their codebase to follow.
The Free plan of SonarCloud will continue to be available and will evolve through the year.
Features described in this release will be made available throughout 2024.
Industry News
Google's Gemma 3n is the latest member of Google's family of open models. Google is announcing that Gemma 3n is now fully available for developers with the full feature set including supporting image, audio, video and text.
Google announced that Imagen 4, its latest text-to-image model, is now available in paid preview in Google AI Studio and the Gemini API.
Payara announced the launch of Payara Qube, a fully automated, zero-maintenance platform designed to revolutionize enterprise Java deployment.
Google released its new AI-first Colab to all users, following a successful early access period that had a very positive response from the developer community.
Salesforce announced new MuleSoft AI capabilities that enable organizations to build a foundation for secure, scalable AI agent orchestration.
Harness announced the General Availability (GA) of Harness AI Test Automation – an AI-native, end-to-end test automation solution, that's fully integrated across the entire CI/CD pipeline, built to meet the speed, scale, and resilience demanded by modern DevOps.
With AI Test Automation, Harness is transforming the software delivery landscape by eliminating the bottlenecks of manual and brittle testing and empowering teams to deliver quality software faster than ever before.
Wunderkind announced the release of Build with Wunderkind — an API-first integration suite designed to meet brands and developers where they are.
Jitterbit announced the global expansion of its partner program and new Jitterbit University partner curricula.
Tricentis unveiled two innovations that aim to redefine the future of software testing for the enterprise.
Snyk announced the acquisition of Invariant Labs, an AI security research firm and early pioneer in developing safeguards against emerging AI threats.
ActiveState expanded support of secure open source to include free and customized low-to-no vulnerability containers that facilitate modern software development.
Pythagora launched an all-in-one AI development platform that enables users to build and deploy full-stack applications from a single prompt.
Cloudflare announced that Containers is in public beta.
The Linux Foundation, the nonprofit organization enabling mass innovation through open source, announced the launch of the Agent2Agent (A2A) project, an open protocol created by Google for secure agent-to-agent communication and collaboration.